NIST SSDF: PS — Release Archived
warningssdf_ps_release_archived
Each release and its associated files are archived and protected (PS.1/PS.3).
Formula
G(Release → P(release_archived)) Why it matters
SSDF PS.1/PS.3: protect all forms of code from unauthorized access and tampering, and archive each release.
Examples
passes the practice's evidence is present
fails the required secure-development step is absent
Use it
ponens policies add ssdf_ps_release_archived --into ./trace.json
ponens trace check ./trace.json